Commit 1145a3516c8407a069be0a77c34c4ae3a77974c8

Authored by Evandro Junior
1 parent 5b5b05f5

render escaped html

lib/proposals_discussion_plugin/topic_helper.rb
... ... @@ -6,7 +6,7 @@ module ProposalsDiscussionPlugin::TopicHelper
6 6  
7 7 content_tag(:div, (
8 8 content_tag(:div, '', :class=>'topic-color', :style => "background-color: #{topic.color};") +
9   - content_tag(:h2, link_to(image_icon + content_tag(:span, topic.title), topic.view_url))
  9 + content_tag(:h2, link_to(image_icon + content_tag(:span, topic.title).html_safe, topic.view_url))
10 10 ), :class => 'topic-title')
11 11 end
12 12  
... ...
views/content_viewer/proposal.html.erb
1 1 <span class="created-at">
2 2 <span class="date"><%= show_date(proposal.published_at) %></span>
3   - <span class="author"><%= _(", by %s") % (proposal.author ? link_to(proposal.author_name, proposal.author_url) : proposal.author_name) %></span>
4   - <span class="comments"><%= _(" - %s") % link_to_comments(proposal) %></span>
  3 + <span class="author"><%= _(", by %s") % (proposal.author ? link_to(proposal.author_name, proposal.author_url).html_safe : proposal.author_name) %></span>
  4 + <span class="comments"><%= _(" - %s") % link_to_comments(proposal).html_safe %></span>
5 5 </span>
6 6  
7 7 <div class="discussion">
... ... @@ -17,7 +17,7 @@
17 17 </div>
18 18  
19 19 <div class="body">
20   - <div class="content"><%= proposal.body %></div>
  20 + <div class="content"><%= proposal.body.html_safe %></div>
21 21 </div>
22 22  
23 23 <% if proposal.created_by == user && !proposal.published %>
... ...